Re: [dns-wg] [dns-operations] Announcement - DNS flag day on 2019-02-01

2018-06-14 Thread Tony Finch
Florian Weimer wrote: > > Is there still no reduction of EDNS buffer size to around 1200 bytes? > Isn't it time after ten years to address that particular vulnerability? Yes. I would like an RFC on this topic, but I don't have the bandwidth to pursue it myself. I sent some notes to the dnsop wg a

Re: [dns-wg] SLD .gov.* within european countries

2018-06-14 Thread Antonio Prado via dns-wg
On 6/14/18 7:09 AM, Peter Koch wrote: > I'm really curious what this little survey is really up to. hi, a 2009 law forced any italian public administration to acquire a domain name under the SLD .gov.it. instead, last february 2018 the italian digital agency (at the prime minister's office) dete

Re: [dns-wg] [dns-operations] Announcement - DNS flag day on 2019-02-01

2018-06-14 Thread Florian Weimer
* Paul Vixie: > Florian Weimer wrote: > ... >> >> Or you can avoid fragmentation in the first place, ... > > so, just always use tcp if you're expecting more than 1200 octets? Sure, unless it's a special dedicated network etc. >> Theoretically, even with a 1200-byte EDNS buffer size, ... > > but